I want to secure my network from the internet, if i install another network card in my server and have the net coming in one card and my network connected on the other card, can i make some kind of firewall and cache server to manage it (has to be windows based).
Currently the net runs straight through the hub to my whole network (straight to the net) so not much security.
- Buy a hardware router
- Configure your server to use ICS
Both methods rely on giving your network private I.P addresses (102.168.x.x) and only allowing the Internet on a secured network.
Option #1 is the best solution as you will be using a hardware firewall.
Option #2 would entail allowing the Internet on one network card, running a software firewall (XP, ZoneAlarm ...)and then having your network hanging off the second network card.
As for creating a cache server .... hmmm. You could install proxy server but why exactly do you want this caching ? Your ISP has a limited amount of caching anyway.
You edit firewall rules to allow all traffic from your LAN to DMZ, but only allow specific traffic from DMZ to LAN-- the same you would do with Internet/WAN to LAN and vice versa.
Is there some reason why resegmenting your network not suit your needs?
You can use windows IPSec to filter traffic but I wouldn't recommend it.
Quote :
I want to secure my network from the internet, if i install another network card in my server and have the net coming in one card and my network connected on the other card, can i make some kind of firewall and cache server to manage it (has to be windows based).
Currently the net runs straight through the hub to my whole network (straight to the net) so not much security.
You are about to answer a thread that has been inactive for more than 6 months. If you still wish to proceed, please ensure that your posting is original and does not duplicate or overlap any prior responses to this thread.